Blame bin/dnssec/dnssec-revoke.docbook

Packit Service ae04f2
Packit Service ae04f2
 - Copyright (C) Internet Systems Consortium, Inc. ("ISC")
Packit Service ae04f2
 -
Packit Service ae04f2
 - This Source Code Form is subject to the terms of the Mozilla Public
Packit Service ae04f2
 - License, v. 2.0. If a copy of the MPL was not distributed with this
Packit Service ae04f2
 - file, You can obtain one at http://mozilla.org/MPL/2.0/.
Packit Service ae04f2
 -
Packit Service ae04f2
 - See the COPYRIGHT file distributed with this work for additional
Packit Service ae04f2
 - information regarding copyright ownership.
Packit Service ae04f2
-->
Packit Service ae04f2
Packit Service ae04f2
Packit Service ae04f2
<refentry xmlns:db="http://docbook.org/ns/docbook" version="5.0" xml:id="man.dnssec-revoke">
Packit Service ae04f2
  <info>
Packit Service ae04f2
    <date>2014-01-15</date>
Packit Service ae04f2
  </info>
Packit Service ae04f2
  <refentryinfo>
Packit Service ae04f2
    <corpname>ISC</corpname>
Packit Service ae04f2
    <corpauthor>Internet Systems Consortium, Inc.</corpauthor>
Packit Service ae04f2
  </refentryinfo>
Packit Service ae04f2
Packit Service ae04f2
  <refmeta>
Packit Service ae04f2
    <refentrytitle><application>dnssec-revoke</application></refentrytitle>
Packit Service ae04f2
    <manvolnum>8</manvolnum>
Packit Service ae04f2
    <refmiscinfo>BIND9</refmiscinfo>
Packit Service ae04f2
  </refmeta>
Packit Service ae04f2
Packit Service ae04f2
  <refnamediv>
Packit Service ae04f2
    <refname><application>dnssec-revoke</application></refname>
Packit Service ae04f2
    <refpurpose>set the REVOKED bit on a DNSSEC key</refpurpose>
Packit Service ae04f2
  </refnamediv>
Packit Service ae04f2
Packit Service ae04f2
  <docinfo>
Packit Service ae04f2
    <copyright>
Packit Service ae04f2
      <year>2009</year>
Packit Service ae04f2
      <year>2011</year>
Packit Service ae04f2
      <year>2014</year>
Packit Service ae04f2
      <year>2015</year>
Packit Service ae04f2
      <year>2016</year>
Packit Service ae04f2
      <year>2018</year>
Packit Service ae04f2
      <year>2019</year>
Packit Service ae04f2
      <year>2020</year>
Packit Service ae04f2
      <holder>Internet Systems Consortium, Inc. ("ISC")</holder>
Packit Service ae04f2
    </copyright>
Packit Service ae04f2
  </docinfo>
Packit Service ae04f2
Packit Service ae04f2
  <refsynopsisdiv>
Packit Service ae04f2
    <cmdsynopsis sepchar=" ">
Packit Service ae04f2
      <command>dnssec-revoke</command>
Packit Service ae04f2
      <arg choice="opt" rep="norepeat"><option>-hr</option></arg>
Packit Service ae04f2
      <arg choice="opt" rep="norepeat"><option>-v <replaceable class="parameter">level</replaceable></option></arg>
Packit Service ae04f2
      <arg choice="opt" rep="norepeat"><option>-V</option></arg>
Packit Service ae04f2
      <arg choice="opt" rep="norepeat"><option>-K <replaceable class="parameter">directory</replaceable></option></arg>
Packit Service ae04f2
      <arg choice="opt" rep="norepeat"><option>-E <replaceable class="parameter">engine</replaceable></option></arg>
Packit Service ae04f2
      <arg choice="opt" rep="norepeat"><option>-f</option></arg>
Packit Service ae04f2
      <arg choice="opt" rep="norepeat"><option>-R</option></arg>
Packit Service ae04f2
      <arg choice="req" rep="norepeat">keyfile</arg>
Packit Service ae04f2
    </cmdsynopsis>
Packit Service ae04f2
  </refsynopsisdiv>
Packit Service ae04f2
Packit Service ae04f2
  <refsection><info><title>DESCRIPTION</title></info>
Packit Service ae04f2
Packit Service ae04f2
    <para><command>dnssec-revoke</command>
Packit Service ae04f2
      reads a DNSSEC key file, sets the REVOKED bit on the key as defined
Packit Service ae04f2
      in RFC 5011, and creates a new pair of key files containing the
Packit Service ae04f2
      now-revoked key.
Packit Service ae04f2
    </para>
Packit Service ae04f2
  </refsection>
Packit Service ae04f2
Packit Service ae04f2
  <refsection><info><title>OPTIONS</title></info>
Packit Service ae04f2
Packit Service ae04f2
Packit Service ae04f2
    <variablelist>
Packit Service ae04f2
      <varlistentry>
Packit Service ae04f2
	<term>-h</term>
Packit Service ae04f2
        <listitem>
Packit Service ae04f2
	  <para>
Packit Service ae04f2
	    Emit usage message and exit.
Packit Service ae04f2
	  </para>
Packit Service ae04f2
        </listitem>
Packit Service ae04f2
      </varlistentry>
Packit Service ae04f2
Packit Service ae04f2
      <varlistentry>
Packit Service ae04f2
        <term>-K <replaceable class="parameter">directory</replaceable></term>
Packit Service ae04f2
        <listitem>
Packit Service ae04f2
          <para>
Packit Service ae04f2
            Sets the directory in which the key files are to reside.
Packit Service ae04f2
          </para>
Packit Service ae04f2
        </listitem>
Packit Service ae04f2
      </varlistentry>
Packit Service ae04f2
Packit Service ae04f2
      <varlistentry>
Packit Service ae04f2
	<term>-r</term>
Packit Service ae04f2
        <listitem>
Packit Service ae04f2
	  <para>
Packit Service ae04f2
	    After writing the new keyset files remove the original keyset
Packit Service ae04f2
	    files.
Packit Service ae04f2
	  </para>
Packit Service ae04f2
        </listitem>
Packit Service ae04f2
      </varlistentry>
Packit Service ae04f2
Packit Service ae04f2
      <varlistentry>
Packit Service ae04f2
        <term>-v <replaceable class="parameter">level</replaceable></term>
Packit Service ae04f2
        <listitem>
Packit Service ae04f2
          <para>
Packit Service ae04f2
            Sets the debugging level.
Packit Service ae04f2
          </para>
Packit Service ae04f2
        </listitem>
Packit Service ae04f2
      </varlistentry>
Packit Service ae04f2
Packit Service ae04f2
      <varlistentry>
Packit Service ae04f2
	<term>-V</term>
Packit Service ae04f2
        <listitem>
Packit Service ae04f2
	  <para>
Packit Service ae04f2
	    Prints version information.
Packit Service ae04f2
	  </para>
Packit Service ae04f2
        </listitem>
Packit Service ae04f2
      </varlistentry>
Packit Service ae04f2
Packit Service ae04f2
      <varlistentry>
Packit Service ae04f2
        <term>-E <replaceable class="parameter">engine</replaceable></term>
Packit Service ae04f2
        <listitem>
Packit Service ae04f2
          <para>
Packit Service ae04f2
            Specifies the cryptographic hardware to use, when applicable.
Packit Service ae04f2
          </para>
Packit Service ae04f2
          <para>
Packit Service ae04f2
            When BIND is built with OpenSSL PKCS#11 support, this defaults
Packit Service ae04f2
            to the string "pkcs11", which identifies an OpenSSL engine
Packit Service ae04f2
            that can drive a cryptographic accelerator or hardware service
Packit Service ae04f2
            module.  When BIND is built with native PKCS#11 cryptography
Packit Service ae04f2
            (--enable-native-pkcs11), it defaults to the path of the PKCS#11
Packit Service ae04f2
            provider library specified via "--with-pkcs11".
Packit Service ae04f2
          </para>
Packit Service ae04f2
        </listitem>
Packit Service ae04f2
      </varlistentry>
Packit Service ae04f2
Packit Service ae04f2
      <varlistentry>
Packit Service ae04f2
        <term>-f</term>
Packit Service ae04f2
        <listitem>
Packit Service ae04f2
          <para>
Packit Service ae04f2
            Force overwrite: Causes <command>dnssec-revoke</command> to
Packit Service ae04f2
            write the new key pair even if a file already exists matching
Packit Service ae04f2
            the algorithm and key ID of the revoked key.
Packit Service ae04f2
          </para>
Packit Service ae04f2
        </listitem>
Packit Service ae04f2
      </varlistentry>
Packit Service ae04f2
Packit Service ae04f2
      <varlistentry>
Packit Service ae04f2
        <term>-R</term>
Packit Service ae04f2
        <listitem>
Packit Service ae04f2
          <para>
Packit Service ae04f2
	    Print the key tag of the key with the REVOKE bit set but do
Packit Service ae04f2
	    not revoke the key.
Packit Service ae04f2
          </para>
Packit Service ae04f2
        </listitem>
Packit Service ae04f2
      </varlistentry>
Packit Service ae04f2
    </variablelist>
Packit Service ae04f2
  </refsection>
Packit Service ae04f2
Packit Service ae04f2
  <refsection><info><title>SEE ALSO</title></info>
Packit Service ae04f2
Packit Service ae04f2
    <para><citerefentry>
Packit Service ae04f2
        <refentrytitle>dnssec-keygen</refentrytitle><manvolnum>8</manvolnum>
Packit Service ae04f2
      </citerefentry>,
Packit Service ae04f2
      <citetitle>BIND 9 Administrator Reference Manual</citetitle>,
Packit Service ae04f2
      <citetitle>RFC 5011</citetitle>.
Packit Service ae04f2
    </para>
Packit Service ae04f2
  </refsection>
Packit Service ae04f2
Packit Service ae04f2
</refentry>